CVE-2023-28161

CVSS v3.1 8.8 (High)
88% Progress
EPSS 0.22 % (61th)
0.22% Progress
Affected Products 1
Advisories 6

If temporary "one-time" permissions, such as the ability to use the Camera, were granted to a document loaded using a file: URL, that permission persisted in that tab for all other documents loaded from a file: URL. This is potentially dangerous if the local files came from different sources, such as in a download directory. This vulnerability affects Firefox < 111.

Weaknesses
CWE-281
Improper Preservation of Permissions
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2023-06-02 17:15:12
(15 months ago)
Updated Date
2023-06-09 18:43:27
(15 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 111.0 version cpe:2.3:a:mozilla:firefox < 111.0
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...